2026 CVE Vulnerabilities

56,949 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-16208MEDIUM5A flaw has been found in django-tastypie up to 0.15.1. The affected element is the function CacheThrottle/CacheDBThrottl...
CVE-2026-16207MEDIUM6.3A vulnerability was detected in django-tastypie up to 0.15.1. Impacted is the function ApiKeyAuthentication of the file ...
CVE-2026-16206MEDIUM6.3A security vulnerability has been detected in django-oauth django-oauth-toolkit 3.3.0. This issue affects the function _...
CVE-2026-16205LOW2.4A weakness has been identified in Pluck CMS up to 4.7.21. This vulnerability affects the function htmlspecialchars_decod...
CVE-2026-16204MEDIUM6.3A security flaw has been discovered in zevorn rt-claw up to 0.2.0. This affects the function tool_run_script_execute of ...
CVE-2026-16203LOW3.5A vulnerability was identified in SourceCodester Class and Exam Timetabling System 1.0. Affected by this issue is some u...
CVE-2026-16202LOW3.5A vulnerability was determined in SourceCodester Class and Exam Timetabling System 1.0. Affected by this vulnerability i...
CVE-2026-16201MEDIUM5.5A vulnerability was found in zevorn rt-claw up to 0.2.0. Affected is the function claw_net_get/claw_net_post of the file...
CVE-2026-16200HIGH7.3A vulnerability has been found in zevorn rt-claw up to 0.2.0. This impacts the function claw_tool_invoke of the file cla...
CVE-2026-16199MEDIUM6.3A flaw has been found in nextlevelbuilder GoClaw up to 3.13.3-beta.3. This affects the function ExecTool.Execute of the ...
CVE-2026-16198MEDIUM5.6A vulnerability was detected in Sipeed PicoClaw up to 0.2.9. The impacted element is an unknown function of the file web...
CVE-2026-16197MEDIUM6.3A security vulnerability has been detected in Sipeed PicoClaw up to 0.2.9. The affected element is the function handleMe...
CVE-2026-16196MEDIUM6.3A weakness has been identified in Sipeed PicoClaw up to 0.2.9. Impacted is the function isPrivateOrRestrictedIP of the f...
CVE-2026-16195MEDIUM6.3A security flaw has been discovered in Sipeed PicoClaw up to 0.2.9. This issue affects the function dispatchIncoming of ...
CVE-2026-10130HIGH8.8QueryWeaver contains an authentication bypass vulnerability that allows unauthenticated attackers to obtain valid sessio...
CVE-2026-16194MEDIUM6.3A vulnerability was determined in zhayujie CowAgent up to 2.1.1. This affects the function WebFetch.execute of the file ...
CVE-2026-16156LOW3.5A security flaw has been discovered in SourceCodester Class and Exam Timetabling System 1.0. This affects an unknown par...
CVE-2026-57857MEDIUM5.1The Flow Payment plugin for WordPress (flow.cl) version 3.0.8 is vulnerable to reflected cross-site scripting on the Woo...
CVE-2026-16155LOW3.5A vulnerability was identified in SourceCodester Class and Exam Timetabling System 1.0. Affected by this issue is some u...
CVE-2026-16154HIGH7.3A vulnerability was determined in SourceCodester Class and Exam Timetabling System 1.0/1.php. Affected by this vulnerabi...
CVE-2026-16152HIGH7.3A vulnerability was found in SourceCodester Class and Exam Timetabling System 1.0. Affected is an unknown function of th...
CVE-2026-12228MEDIUM5.4A stored cross-site scripting (XSS) vulnerability exists in the `POST /api/prompts/share` endpoint of parisneo/lollms (l...
CVE-2026-57848MEDIUM6.8Stoat for Android exports the chat.stoat.activities.ShareTargetActivity component (reachable to any process on the devic...
CVE-2026-53994MEDIUM6.5ProFTPD mod_sftp contains a heap-based buffer overflow reachable by an authenticated SFTP user. The fxp_packet_read() fu...
CVE-2026-16151MEDIUM6.3A vulnerability has been found in CartoDB carto-api-client 0.5.29. This impacts the function addFilter of the file src/f...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now